Remote Connectivity to XV, XP and Epro Units Running Visual Designer
Total Page:16
File Type:pdf, Size:1020Kb
Technical Data AP04803010E Effective August 2011 Remote Connectivity to XV, XP and ePro units running Visual Designer Intro Blackberry® (non-Windows) devices, to connect to the remote desktop server of the XV unit over a Remote connectivity is one of the major features WiFi network. of Visual Designer® and our new operator interface hardware platforms running that software. The 1. The Remote (desktop) Client can be ability to monitor, troubleshoot, edit and adminis- downloaded from Eaton’s Website under OI ® ter Eaton XV, XP, and ePro PS systems remotely Documentation/Software Downloads at: over a plant network or over the Internet can save http://www.eaton.com/Electrical/USA/ customers time and money through reduced sup- ProductsandServices/AutomationandControl/ port and maintenance and improve overall machine OperatorInterface/XVXP/index.htm effectiveness by reducing downtime and improving quality. This paper describes the various hardware This file can be copied to a PC and run platforms and how each addresses remote access without going through an install process. It is and management. a true remote desktop client (like VNC or UltraVNC on a standard PC) allowing full While remote connectivity is usually thought of as remote control of the unit. This connects to the ability to view and take action from a user’s the remote desktop server running on the XV PC an equally important aspect is the ability of the unit. Only one remote desktop connection can machine to reach out and programmatically con- be supported at the same time. tact key individuals when a problem is developing prior to serious downtime or quality issues. Visual 2. The user can connect using a thin client Designer can easily be configured on these OI interface to the web server running on the XV platforms to monitor process and quality problems by opening up Internet Explorer® and browsing and even system health and sent out emails or to the XV’s IP address followed by a forward text message alerts to local or remote personnel slash and the name of the startup page. For to prevent problems from occurring. example, if the XV’s IP address is 192.168.1.20 and the startup page was named Main, then the URL to open would be: XV Family http://192.168.1.20/Main.html There are five ways to monitor and administer the No special software is required to be installed XV unit remotely over the Internet. These can be prior to connecting to the unit, but the first demonstrated locally by connecting a PC to the XV time the user connects they will be asked to with a crossover cable or through a hub/switch/ accept a download of an ActiveX control that router. Replicating this over the Internet is depen- automatically installs allowing Internet Explorer dent on the user setting up secure remote access to display the application pages. The XV unit is through their corporate or local firewall. licensed from the factory for one web client There are four processes that automatically start session, meaning only one web client can on the XV unit from the Autoexec.bat file which be connected at one time. Field upgrades support the five remote connections. The first is can be purchased that will allow up to 8 the remote desktop server (CERemoteSvr.exe), simultaneous web client connections. the second is the FTP server (FtpSvr.exe), the third 3. The user can connect to the FTP server by is the web server (HttpdStart.exe) and the fourth opening Windows® Explorer on their PC and is the Visual Designer remote agent (CEServer. typing in ftp://ipaddress where ipaddress is exe). A fifth process, VNC Gateway is remarked the IP address of the XV unit. You can use out in the Autoexec.bat file of the XV unit but the this to copy and paste files to and from file can be edited to launch this service as well. the XV unit. Multiple simultaneous FTP This allows VNC clients connections, available on connections are possible. devices such as the iPhone®, iPad®, Android™ and 4. Visual Designer development software can connect to the XV remote agent for: a. Uploading the project b. Downloading or updating the project and/or runtime software c. Downloading or updating the runtime software d. Updating the runtime license to add tags or thin client connections. This is done by clicking on the Connect icon in the Remote Management group of the Home tab of the ribbon then typing in the IP address Technical Data AP04803010E Remote Connectivity to XV, XP and Effective August 2011 ePro units running Visual Designer of the unit and clicking the connect button. The developer can Application Security and Internet / Firewall then pick the desired function from the four tabs in the Remote Management window. Security Considerations 5. The user can connect using a SMA (Studio Mobile Access) The security system in Visual Designer is fully implemented for thin client interface from a Smart Phone, Blackberry, PDA, web thin client connections. The application developer can prevent iPhone/iPad, or other smart wi-fi or Internet enabled device. remote changes to process settings and control for all web thin Studio SMA uses Collaboration Data Objects (CDO) and Active client connections or rely on the user/password security settings Server Pages (ASP) to build the Web application pages for mobile to dictate control access as well as access to specific pages or ® browsers. The mobile browser does not need to support Java , screens. ™ Flash , or any other advanced features because the pages are For all remote connections such as Web Thin Client, FTP, remote built entirely on the server-side and then sent to the browser as desktop, and remote editing, network security needs to be con- simple HTML. To connect through the SMA interface the user sidered when setting up Internet and Firewall connectivity. Proper must open a browser on the mobile device and use the following setup of network security is up to personnel familiar with the setup link: http://ipaddress/SMA/LogOn.asp of the network hardware to allow or prevent access to specific activi- In some cases the user may want to limit remote access to the XV ties through routers and firewalls. While specific Internet hardware unit. All that is needed is to upload the XV’s autoexec.bat file using settings and the user interface to configure them will be somewhat the FTP connection, then remark out the commands that start the different from vendor to vendor, the network configurator will need various remote servers automatically then copy the file back and to know what Ethernet ports are used by each of the remote con- perform a reboot. It is recommended to at least leave the Visual nections. For instance the Visual Designer web server utilizes ports Designer remote agent started automatically to facilitate stopping 80 (HTML) and 1234 (TCP/IP) for its functionality and the remote the Visual Designer project to gain access to the operating system agent that allows for the Visual Designer editor to remotely edit an from which the other servers can be manually started. Another way XP or XV unit uses port 4322. A complete list of potential port usage to do this would be to place an Exit function in the project with the is shown below: proper security setting to allow OS access for maintenance. Port # Program XP and ePro PS Families 20 FTP Server (Data) 21 FTP Server (Command) There are also five ways to monitor and administer the XP or ePro PS units remotely over the Internet. On these platforms the IIS 25 SMTP Server and FTP services are included in the OS build and automatically 80 Microsoft IIS Server for HTTP packets started to support web client and SMA connections through Internet Explorer and FTP connections through Windows Explorer much like 110 POP3 the XV units. One difference is that the FTP site for the XV is the 118 Microsoft SQL Server Services entire internal flash and external SD flash driver whereas the default FTP site for the XP is D:\Cfg and on the ePro D:\ . Also the FTP 161 SNMP directories both have the virtual name of Cfg so that in Windows 162 SNMP Trap Explorer the user types ftp://ipaddress/Cfg where ipaddress is the IP address of the XP or ePro PS unit. On both units the user can add 389 LDAP FTP virtual sites to gain remote file access to other folders through 443 Microsoft IIS Server for HTTPS packets (SSL) Control Panel > Admin Tools > Internet Information Services. 502 Modbus TCP/IP protocol The Visual Designer remote agent is automatically started on both XV and ePro PS through a shortcut in the All Programs/Startup 663 LDAP over SSL folder. The developer can then connect to the units from the Visual 1028 FTP Client (Command) Designer editor to upload/download/update the project. However, unlike the XV units, the runtime software cannot be updated from 1029 FTP Client (Data) the editor/remote agent connection nor can the Visual Designer 1234 Project TCP/IP Server license be updated. To update the runtime software version the user must follow the installation process from the unit much like 1443 Microsoft SQL Server they would do on a standard PC. Upgrading the runtime license is 1444 Microsoft SQL Server default port (Monitor) also accomplished locally using the Register utility from Start > All Programs > Eaton > Visual Designer Vx.y > Register. This will 1521 Oracle allow the user to update the tag count or increase the number of 1526 Oracle simultaneous thin client connections. On the XP and ePro the user 2030 Oracle can have a maximum of 256 simultaneous thin client connections.